AI-generated analysisPublished automatically and not human-verified. Validated context appears in community notes below.
← Watch feed
Informational 15 Bitcoin

xpay: add extra_tlvs support (unused for now).

Public commit record

What the developer wrote

Authored by Rusty Russell

60/100 · Adequate
xpay: add extra_tlvs support (unused for now).

This adds them to the final onion (but it's always NULL for now).

Signed-off-by: Rusty Russell <rusty@rustcorp.com.au>
✓ Descriptive subject✓ Names a concrete action or component✓ Provides an explanatory body
The short version

What changed, and why it matters

This commit adds plumbing for optional extra data fields in Lightning payment onions, but explicitly leaves the feature unused. The new extra_tlvs field is always set to NULL, so no behavior changes for users today. It appears to be preparatory work for future 'keysend' style payments.

Recommended action

No immediate action needed. When future commits enable non-NULL extra_tlvs, review the hop_append helper for correct length handling, memory allocation failures, and TLV validity.

Security signals we found

01

New TLV append helper added but not yet reachable with non-NULL input

02

Field explicitly documented as unused/always NULL in commit message

03

No input validation changes because no new caller supplies data

Risk score

Why this scored 15/100

Our methodology →
Potential impact 0/30
Exploitability 0/25
Stealth signal 0/15
Affected reach 0/15
Confidence 10/10
Evidence quality 5/5
Human-validated context

Community notes

Notes can correct, qualify, or add evidence to the AI analysis. Every note shown here has been validated by a human moderator.

No validated notes yet.

The AI analysis stands alone for now. Submit a note if you can add evidence or important context.